CVE-2012-5474
30.12.2019, 20:15
The file /etc/openstack-dashboard/local_settings within Red Hat OpenStack Platform 2.0 and RHOS Essex Release (python-django-horizon package before 2012.1.1) is world readable and exposes the secret key value.Enginsight
Vendor | Product | Version |
---|---|---|
redhat | openstack | 2.0 |
openstack | horizon | 2012.1 ≤ 𝑥 < 2012.1.1 |
debian | debian_linux | 8.0 |
debian | debian_linux | 9.0 |
debian | debian_linux | 10.0 |
𝑥
= Vulnerable software versions

Debian Releases
Common Weakness Enumeration
References